NA

CVE-2024-21410

Published: 13/02/2024 Updated: 11/04/2024
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Microsoft Exchange Server Elevation of Privilege Vulnerability

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft exchange server 2016

microsoft exchange server 2019

Github Repositories

Microsoft Exchange server Privilege Escalation - WORK!!

CVE-2024-21410-poc Microsoft Exchange server Privilege Escalation - WORK!! Demo: Proof-of-concept: CVE-

Privilege Escalation in Microsoft Exchange 2019

CVE-2024-21410-poc Privilege Escalation in Microsoft Exchange 2019

Recent Articles

Germany warns of 17K vulnerable Microsoft Exchange servers exposed online
BleepingComputer • Sergiu Gatlan • 26 Mar 2024

Germany warns of 17K vulnerable Microsoft Exchange servers exposed online By Sergiu Gatlan March 26, 2024 03:21 PM 0 The German national cybersecurity authority warned on Tuesday that it found at least 17,000 Microsoft Exchange servers in Germany exposed online and vulnerable to one or more critical security vulnerabilities. According to the German Federal Office for Information Security (BSI), around 45,000 Microsoft Exchange servers in Germany have Outlook Web Access (OWA) enabled and are acce...

Over 28,500 Exchange servers vulnerable to actively exploited bug
BleepingComputer • Bill Toulas • 19 Feb 2024

Over 28,500 Exchange servers vulnerable to actively exploited bug By Bill Toulas February 19, 2024 01:46 PM 0 Up to 97,000 Microsoft Exchange servers may be vulnerable to a critical severity privilege escalation flaw tracked as CVE-2024-21410 that hackers are actively exploiting. Microsoft addressed the issue on Fenruary 13, when it had already been leveraged as a zero-day. Currently, 28,500 servers have been identified as being vulnerable. Exchange Server is widely used in busine...

These 17,000 unpatched Microsoft Exchange servers are a ticking time bomb
The Register

Topics Security Off-Prem On-Prem Software Offbeat Special Features Vendor Voice Vendor Voice Resources One might say this is a wurst case scenario

The German Federal Office for Information Security (BIS) has issued an urgent alert about the poor state of Microsoft Exchange Server patching in the country. The government regulator says there are 17,000 or more Exchange Server instances in Germany vulnerable to at least one critical vulnerability, out of around 45,000 public-facing servers in the Euro nation running the software. Of these servers, 12 percent are running a version of Exchange Server that is ordinarily no longer supported, such...